Bulletins

CISA (ALL)
07/21/2026

View CSAF

Summary

SIDIS Secured SmartPlug before V7.26.0310 is affected by multiple vulnerabilities in the components OpenSSL, OpenSSH, and several other packages as described below. Siemens has released a new version of SIDIS Secured SmartPlug and recommends to update to the latest version.

The following versions of …

CISA (ALL)
07/21/2026

View CSAF

Summary

Palo Alto Networks has published [1] information on vulnerabilities in PAN-OS. This advisory lists the related Siemens Industrial products affected by these vulnerabilities. Customers are advised to consult and implement the workarounds provided in Palo Alto Networks' upstream security notifications. [1] https://security.paloaltonetworks.com/

The following …

CISA (ALL)
07/21/2026

View CSAF

Summary

Successful exploitation of these vulnerabilities could result in an attacker accessing sensitive credentials, disrupting connected infrastructure, or manipulating physical equipment, which could present a physical safety risk.

The following versions of Tycon Systems TPDIN-Monitor-WEB2 are affected:

  • TPDIN-Monitor-WEB2 2.3.9 
…
CISA (ALL)
07/21/2026

View CSAF

Summary

Successful exploitation of this vulnerability could allow for an attacker to cause a denial-of-service condition on the product.

The following versions of Rockwell Automation 1734 POINT I/O are affected:

  • 1734 POINT I/O 3.023 
…
CVSS Vendor
BOSCH PSIRT
07/21/2026

BOSCH-SA-466086: The GitHub Security Lab has discovered a vulnerability in 7-Zip 26.00 and older: A heap buffer overflow vulnerability (GHSL-2026-140) exists in 7-Zip version 26.00, caused by an under-allocation in the NTFS compressed stream buffer (GetCuSize shift UB), potentially allowing attackers to exploit this issue for arbitrary code execution or …

CISA (ALL)
07/16/2026

View CSAF

Summary

Successful exploitation of this vulnerability could allow an attacker to cause a denial-of-service condition.

The following versions of NASA Core Flight System (cFS) Health & Safety (HS) Application are affected:

  • Core Flight System (cFS) Health & Safety (HS) Application
…
CISA (ALL)
07/16/2026

View CSAF

Summary

Successful exploitation of this vulnerability could allow an attacker to cause a denial-of-service condition.

The following versions of Rockwell Automation 1756-EN2, 1756-EN3, and 1756-ENBT are affected:

  • 1756-EN3 <=V12.001 (CVE-2026-9653)
  • 1756-EN2 <=V12.001 (CVE-2026-9653)
  • 1756-ENBT V6.006 (CVE-2026-9653)
…
CISA (ALL)
07/16/2026

View CSAF

Summary

Successful exploitation of this vulnerability could allow an attacker to cause a denial-of-service condition on the affected product.

The following versions of Rockwell Automation Flex 5000 Adapter are affected:

  • Flex 5000 Adapter 6.011 (CVE-2026-12659)
CVSS …